Sneaky New Windows Virus Steals Financial Data

The virus itself doesn't actually harm a PC, but it does load other software on the computer, including key-loggers that are triggered when a user visits any of 900 financial institutions' Web sites. The virus then captures the user's log-on information and sends it back to the virus writers, who specialize in stealing confidential information.
The virus is classified as a root kit, meaning it hijacks the administrator functions on the computer and evades detection by normal scanning methods, in this case by hiding in the MBR. Few anti-virus programs can detect the virus, and none can remove it. Because of its location in the MBR, the virus cannot be removed once the computer has been booted.
That said, an independent company GMER has developed software that can scan for and remove the rootkit.
From The BBC
Related Links:
- iPhone Gets its First Virus
- Malicious Websites Trick Google, Infect Computers
- E-Mail Security Hole Found in Apple's OS X Leopard





Whitney Houston Dead: Singer Dies at 48, Body Found in Beverly Hilton Hotel
Whitney Houston Autopsy: Cause of Death Determined?
Whitney Houston, Bobbi Kristina: Late Singer's Daughter Hospitalized
Whitney Houston Dead: Stars React to Legend's Sudden Death
Grammy Red Carpet 2012 (PHOTOS)
Grammy 2012 Winners' List: Adele Sweeps Music's Biggest Night
Jennifer Hudson Whitney Tribute: Grammy President Reveals Why Singer Was Chosen for Musical Memorial
Katy Perry Grammy Performance 2012: Did the Diva Diss Her Ex-Hubby With Revealing New Song?
5-Hour Energy: A Success Equal Parts Caffeine, Chemistry and Meditation
People With Easy-To-Pronounce Names More Likely To Succeed, Study Says














Comments
8
Subscribe to commentsBethApr 7th 2008 6:17AM
AVG{Grisoft} offers a free rootkit detection tool and removal on it's website also. I TRUST AVG, not sure about GMER?! never heard of it. Here's the link
http://free.grisoft.com/doc/5390/us/frt/0
Nick LombardoJan 14th 2008 10:49PM
Wherer can I buy this program?
Nicholas LombardoJan 14th 2008 10:49PM
Where do I get this program?
David BilletJan 15th 2008 1:40AM
I am a bit suspicious of where this came from. Only one company has a program to get rid of it? How convenient. Why isn't Norton, McAfee and others doing something to fix this?
Enna03Jan 14th 2008 10:56PM
the link to the site that has a fix doesn't work. Is this a valid virus scare?
Jerry BassettJan 15th 2008 12:16AM
Since the story is on AOL, the link is probably what installs it.
BoscoJan 15th 2008 12:24AM
I just checked Symantec's web site; they became aware of this trojan horse on 1/7 and have taken action against it. They rate it's danger level as low. I would assume McAfee is also aware.
GaryOCJan 15th 2008 7:33AM
Very strange.
The site looks like it could be some bad guys.
I would not trust this until the big guys tell us. We could be downloading exactly what they warn us about.
CAUTION.